NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59923  CVE-2006-1209  PHP Advanced Transfer Manager 1.00 through 1.30 stores sensitive information, including password hashes, under the web root with insufficient access control, which allows remote attackers to download each password hash via a direct request for a users/[USERNAME] file.    Medium  2016-12-20  2008-09-05  View
60179  CVE-2006-1470  OpenLDAP in Apple Mac OS X 10.4 up to 10.4.6 allows remote attackers to cause a denial of service (crash) via an invalid LDAP request that triggers an assert error.    Medium  2016-12-20  2011-03-07  View
60947  CVE-2006-2244  Multiple SQL injection vulnerabilities in Web4Future News Portal allow remote attackers to execute arbitrary SQL commands via the ID parameter to (1) comentarii.php or (2) view.php.    6.4  Medium  2016-12-20  2008-09-05  View
61203  CVE-2006-2508  SQL injection vulnerability in tr1.php in YourFreeWorld.com Stylish Text Ads Script allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly involving an attack vector using advertise.php.    6.4  Medium  2016-12-20  2011-03-07  View
61459  CVE-2006-2774  Cross-site scripting (XSS) vulnerability in search.php in QontentOne CMS allows remote attackers to inject arbitrary web script or HTML via the search_phrase parameter.    6.8  Medium  2016-12-20  2011-03-07  View

Page 718 of 17672, showing 5 records out of 88360 total, starting on record 3586, ending on 3590

Actions